book-of-ethereum[.]entry-cryptolist[.]app
“CRYPTOLIST”
book-of-ethereum.entry-cryptolist.app — Inhalt nicht verfügbar. Markenidentität: Ethereum; Betrugstyp: Crypto Drainer. Zusammenfassung der Beweislage: VirusTotal 16/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, ESET); PhishDestroy score 95/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
On 29 July 2026 the domain book-of-ethereum.entry-cryptolist.app was classified as an active crypto drainer with an elevated risk rating. Infrastructure analysis shows the domain resolves to the IPv4 address 188.114.96.3. The address is hosted on a service that currently does not return any authoritative name server records (NS_NOT_FOUND), indicating that the domain’s DNS configuration is either deliberately concealed or misconfigured. The domain appears on a single security blocklist and is explicitly blocked by the PhishDestroy filtering service.
VirusTotal reports that 16 of 91 scanned security vendors have flagged the domain as malicious, corroborating the blocklist evidence. No additional intelligence such as registrar information, SSL certificate details, HTTP response codes, or page title is available in the current dataset, leaving those aspects of the infrastructure unverified. The lack of visible name server data and the limited blocklist presence suggest a low‑profile deployment, but the detection count on VirusTotal and the specific crypto‑drainer classification indicate a targeted threat aimed at illicitly extracting cryptocurrency assets. Defenders should add the resolved IP address 188.114.96.3 to network‑level deny lists, ensure that any outbound connections to this host are blocked, and monitor DNS logs for queries to the domain.
Because the domain’s registrar and SSL status are unknown, further passive DNS and certificate transparency monitoring is recommended to capture any future changes. Continuous re‑scanning of the domain with multi‑engine services will help verify whether additional vendors begin to flag the site, and integration with threat‑intel feeds that include the PhishDestroy blocklist will improve detection capability. Until more comprehensive evidence becomes available, the domain should be treated as malicious and blocked across enterprise perimeter defenses.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt